Managed and Self-Hosted
Managed and Self-Hosted
Section titled “Managed and Self-Hosted”V1 supports two explicit trust boundaries. Managed mode runs the control plane and data plane in DAC-operated infrastructure and reaches explicitly approved public HTTPS API and MCP targets. Self-hosted mode uses Helm with customer-managed PostgreSQL, Valkey, IdP, secret manager, OpenTelemetry, SIEM/export, and private-network routing.
Audience
Section titled “Audience”- Operators preparing a managed or self-hosted review.
- Platform engineers checking dependency and topology claims.
- Security reviewers verifying no required vendor SaaS runtime path for fully self-hosted mode.
What is this?
Section titled “What is this?”This page is a summary, not the full install runbook. It states the deployment posture and points to the source runbooks for exact Helm values, diagnostics, evidence bundles, backup/restore, and upgrade/drain checks.
When do I use it?
Section titled “When do I use it?”Use this when the question is “Can DAC operate this for us?” or “What must stay customer-controlled?”
Use deeper runbooks when you need exact Helm commands, values schema checks, release evidence, or sandbox proof.
What happens?
Section titled “What happens?”Self-hosted V1:
- Installs through the Helm chart.
- Uses customer-managed PostgreSQL for durable truth, audit metadata, and outbox state.
- Uses customer-managed Valkey for hot session and cache state.
- References customer-controlled OIDC/SAML/local identity configuration.
- References a Vault-compatible or customer secret manager.
- Sends telemetry and audit export only to customer-controlled or disabled endpoints by default.
- Renders install diagnostics as metadata-only status and reason codes.
- Requires signed image, SBOM, release evidence, backup/restore, upgrade/drain, and no-secret proof for release handoff.
Managed V1:
- Runs control-plane and data-plane services inside the DAC boundary.
- Allows runtime egress only to explicitly approved public HTTPS API and MCP targets.
- Requires self-hosted deployment for customer-private targets.
- Uses cached policy only inside bounded outage settings.
- Fails closed when policy, cache, route, credential, or control-plane state cannot be verified.
What can go wrong?
Section titled “What can go wrong?”- Missing PostgreSQL, Valkey, identity, secret-manager, OTel, or SIEM/export refs produce install diagnostic reason codes.
- Enabled payload logging is unsafe unless explicitly redacted and approved.
- Managed cached policy can expire; runtime must fail closed instead of guessing.
- No-outbound runtime checks can deny non-customer egress before upstream.
- Certified air-gapped packaging, Terraform modules, Kubernetes operator behavior, ClickHouse, NATS, Kafka, Redpanda, and managed MCP hosting are outside the V1 default path.
Source truth
Section titled “Source truth”- deploy/helm/enterprise-mcp-gateway/values.yaml
- deploy/helm/enterprise-mcp-gateway/values.schema.json
- Read Security Model for the hardening checklist.
- Read Audit And Deny Diagnostics for metadata-only investigation.
- Read Design-Partner Pilot for pilot deployment proof.
Type set in Geist, Source Serif 4, and Departure Mono.